Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2015-7743 |
|
XXE (XML External Entity) in paessler (CVE-2015-7743)
vulnerability in paessler (CVE-2015-7743). Confidential information can be exposed externally.
|
| CVE-2013-7451 |
|
Cross-Site Scripting (XSS) in nodejs (CVE-2013-7451)
cross-site scripting in nodejs (CVE-2013-7451). Risk of unauthorized operations or information disclosure.
|
| CVE-2013-7452 |
|
Cross-Site Scripting (XSS) in nodejs (CVE-2013-7452)
cross-site scripting in nodejs (CVE-2013-7452). Risk of unauthorized operations or information disclosure.
|
| CVE-2013-7453 |
|
Cross-Site Scripting (XSS) in nodejs (CVE-2013-7453)
cross-site scripting in nodejs (CVE-2013-7453). Risk of unauthorized operations or information disclosure.
|
| CVE-2013-7454 |
|
Cross-Site Scripting (XSS) in nodejs (CVE-2013-7454)
cross-site scripting in nodejs (CVE-2013-7454). Risk of unauthorized operations or information disclosure.
|
| CVE-2014-9772 |
|
Cross-Site Scripting (XSS) in nodejs (CVE-2014-9772)
cross-site scripting in nodejs (CVE-2014-9772). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8856 |
|
Cross-Site Scripting (XSS) in openjsf (CVE-2015-8856)
cross-site scripting in openjsf (CVE-2015-8856). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8861 |
|
Cross-Site Scripting (XSS) in handlebarsjs-project (CVE-2015-8861)
cross-site scripting in handlebarsjs-project (CVE-2015-8861). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8862 |
|
Cross-Site Scripting (XSS) in mustachejs-project (CVE-2015-8862)
cross-site scripting in mustachejs-project (CVE-2015-8862). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-0765 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2016-0765)
cross-site scripting in wordpress (CVE-2016-0765). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8860 |
|
Vulnerability in nodejs (CVE-2015-8860)
vulnerability in nodejs (CVE-2015-8860). Data can be tampered with by attackers.
|
| CVE-2016-1281 |
|
Vulnerability in idrix (CVE-2016-1281)
vulnerability in idrix (CVE-2016-1281). Successful exploitation can lead to full system takeover.
|
| CVE-2015-8855 |
|
Vulnerability in dos (CVE-2015-8855)
vulnerability in dos (CVE-2015-8855). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8858 |
|
Vulnerability in dos (CVE-2015-8858)
vulnerability in dos (CVE-2015-8858). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-4626 |
|
Vulnerability in treasuryxpress (CVE-2015-4626)
vulnerability in treasuryxpress (CVE-2015-4626). Data can be tampered with by attackers.
|
| CVE-2015-8857 |
|
Vulnerability in uglifyjs-project (CVE-2015-8857)
vulnerability in uglifyjs-project (CVE-2015-8857). Successful exploitation can lead to full system takeover.
|
| CVE-2015-8972 |
|
Buffer Overflow in gnu (CVE-2015-8972)
vulnerability in gnu (CVE-2015-8972). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5569 |
|
SQL Injection in sqli (CVE-2017-5569)
SQL injection in sqli (CVE-2017-5569). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5570 |
|
SQL Injection in sqli (CVE-2017-5570)
SQL injection in sqli (CVE-2017-5570). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5182 |
|
Path Traversal in path-traversal (CVE-2017-5182)
path traversal in path-traversal (CVE-2017-5182). Confidential information can be exposed externally.
|
| CVE-2017-5544 |
|
Vulnerability in dos (CVE-2017-5544)
vulnerability in dos (CVE-2017-5544). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5539 |
|
Path Traversal in path-traversal (CVE-2017-5539)
path traversal in path-traversal (CVE-2017-5539). Confidential information can be exposed externally.
|
| CVE-2017-5554 |
|
Authentication Bypass in oneplus (CVE-2017-5554)
authentication bypass in oneplus (CVE-2017-5554). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5574 |
|
SQL Injection in sqli (CVE-2017-5574)
SQL injection in sqli (CVE-2017-5574). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5575 |
|
SQL Injection in sqli (CVE-2017-5575)
SQL injection in sqli (CVE-2017-5575). Successful exploitation can lead to full system takeover.
|
| CVE-2016-8213 |
|
Cross-Site Scripting (XSS) in emc (CVE-2016-8213)
cross-site scripting in emc (CVE-2016-8213). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5553 |
|
Cross-Site Scripting (XSS) in b2evolution (CVE-2017-5553)
cross-site scripting in b2evolution (CVE-2017-5553). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5556 |
|
Out-of-Bounds Read in dos (CVE-2017-5556)
vulnerability in dos (CVE-2017-5556). Confidential information can be exposed externally.
|
| CVE-2017-5563 |
|
Out-of-Bounds Read in c (CVE-2017-5563)
vulnerability in c (CVE-2017-5563). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10156 |
|
Vulnerability in c (CVE-2016-10156)
vulnerability in c (CVE-2016-10156). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `229` or later.
|
| CVE-2016-10101 |
|
Vulnerability in hiteksoftware (CVE-2016-10101)
vulnerability in hiteksoftware (CVE-2016-10101). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10102 |
|
Vulnerability in hiteksoftware (CVE-2016-10102)
vulnerability in hiteksoftware (CVE-2016-10102). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10103 |
|
Vulnerability in hiteksoftware (CVE-2016-10103)
vulnerability in hiteksoftware (CVE-2016-10103). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10104 |
|
Vulnerability in hiteksoftware (CVE-2016-10104)
vulnerability in hiteksoftware (CVE-2016-10104). Confidential information can be exposed externally.
|
| CVE-2016-10157 |
|
Code Injection in akamai (CVE-2016-10157)
code injection in akamai (CVE-2016-10157). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5545 |
|
Out-of-Bounds Read in c (CVE-2017-5545)
vulnerability in c (CVE-2017-5545). Confidential information can be exposed externally.
|
| CVE-2014-9754 |
|
Vulnerability in viprinet (CVE-2014-9754)
vulnerability in viprinet (CVE-2014-9754). Data can be tampered with by attackers.
|
| CVE-2014-9755 |
|
Vulnerability in viprinet (CVE-2014-9755)
vulnerability in viprinet (CVE-2014-9755). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9435 |
|
Vulnerability in c (CVE-2016-9435)
vulnerability in c (CVE-2016-9435). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9436 |
|
Vulnerability in c (CVE-2016-9436)
vulnerability in c (CVE-2016-9436). Risk of unauthorized operations or information disclosure.
|
| CVE-2014-2045 |
|
Cross-Site Scripting (XSS) in viprinet (CVE-2014-2045)
cross-site scripting in viprinet (CVE-2014-2045). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5316 |
|
Out-of-Bounds Read in c (CVE-2016-5316)
vulnerability in c (CVE-2016-5316). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5317 |
|
Buffer Overflow in dos (CVE-2016-5317)
vulnerability in dos (CVE-2016-5317). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5318 |
|
Buffer Overflow in libtiff (CVE-2016-5318)
vulnerability in libtiff (CVE-2016-5318). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5319 |
|
Buffer Overflow in c (CVE-2016-5319)
vulnerability in c (CVE-2016-5319). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5321 |
|
Buffer Overflow in dos (CVE-2016-5321)
vulnerability in dos (CVE-2016-5321). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-6253 |
|
Vulnerability in netbsd (CVE-2016-6253)
vulnerability in netbsd (CVE-2016-6253). Successful exploitation can lead to full system takeover.
|
| CVE-2016-8644 |
|
In Moodle 2.x and 3.x, the capability to view course notes is checked in the wrong context.
In Moodle 2.x and 3.x, the capability to view course notes is checked in the wrong context.
|
| CVE-2017-2576 |
|
In Moodle 2.x and 3.x, there is incorrect sanitization of attributes in forums.
In Moodle 2.x and 3.x, there is incorrect sanitization of attributes in forums.
|
| CVE-2017-2578 |
|
In Moodle 3.x, there is XSS in the assignment submission page.
In Moodle 3.x, there is XSS in the assignment submission page.
|